[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4222-1 gnupg2 -- gnupg2

ID: oval:org.secpod.oval:def:53346Date: (C)2019-04-04   (M)2023-12-20
Class: PATCHFamily: unix




Marcus Brinkmann discovered that GnuGPG performed insufficient sanitisation of file names displayed in status messages, which could be abused to fake the verification status of a signed email. Details can be found in the upstream advisory at https://lists.gnupg.org/pipermail/gnupg-announce/2018q2/000425.html

Platform:
Linux Mint 3
Product:
gnupg2
Reference:
DSA-4222-1
CVE-2018-12020
CVE    1
CVE-2018-12020
CPE    108
cpe:/a:gnupg:gnupg:0.2.10
cpe:/a:gnupg:gnupg:0.2.12
cpe:/a:gnupg:gnupg:0.2.11
cpe:/a:gnupg:gnupg:0.2.14
...

© SecPod Technologies